🕵️ SicherheitslückenDetection and response for the actively exploited ProxyShell vulnerabilities(02.06.2022 um 02:00 Uhr)
⚠️ Malware / Trojaner / VirenHunting In Memory(21.06.2022 um 02:00 Uhr)
🔧 AI Nachrichten Getting the Most Out of Transformers in Elastic(23.08.2022 um 02:00 Uhr)
🕵️ SicherheitslückenDetecting and responding to Dirty Pipe with Elastic(09.09.2022 um 02:00 Uhr)
🕵️ SicherheitslückenDetection rules for SIGRed vulnerability(22.11.2022 um 01:00 Uhr)
🕵️ SicherheitslückenDetecting Exploitation of CVE-2021-44228 (Log4j2) with Elastic Security(22.11.2022 um 01:00 Uhr)
🕵️ SicherheitslückenElastic's response to the Spring4Shell vulnerability (CVE-2022-22965)(22.11.2022 um 01:00 Uhr)
🕵️ SicherheitslückenAnalysis of Log4Shell vulnerability & CVE-2021-45046(30.11.2022 um 01:00 Uhr)
⚠️ Malware / Trojaner / VirenEMOTET Dynamic Configuration Extraction(01.12.2022 um 01:00 Uhr)
⚠️ Malware / Trojaner / VirenQBOT Configuration Extractor(06.12.2022 um 01:00 Uhr)
🕵️ SicherheitslückenDetection and response for the actively exploited ProxyShell vulnerabilities(02.06.2022 um 02:00 Uhr)
⚠️ Malware / Trojaner / VirenHunting In Memory(21.06.2022 um 02:00 Uhr)
🔧 AI Nachrichten Getting the Most Out of Transformers in Elastic(23.08.2022 um 02:00 Uhr)
🕵️ SicherheitslückenDetecting and responding to Dirty Pipe with Elastic(09.09.2022 um 02:00 Uhr)
🕵️ SicherheitslückenDetection rules for SIGRed vulnerability(22.11.2022 um 01:00 Uhr)
🕵️ SicherheitslückenDetecting Exploitation of CVE-2021-44228 (Log4j2) with Elastic Security(22.11.2022 um 01:00 Uhr)
🕵️ SicherheitslückenElastic's response to the Spring4Shell vulnerability (CVE-2022-22965)(22.11.2022 um 01:00 Uhr)
🕵️ SicherheitslückenAnalysis of Log4Shell vulnerability & CVE-2021-45046(30.11.2022 um 01:00 Uhr)
⚠️ Malware / Trojaner / VirenEMOTET Dynamic Configuration Extraction(01.12.2022 um 01:00 Uhr)
⚠️ Malware / Trojaner / VirenQBOT Configuration Extractor(06.12.2022 um 01:00 Uhr)

🕵️ Sicherheitslücken 🕛 kürzlich 2 Min Lesezeit SECURITY-FEED
0

Security Weekly - A CRA Resource: Hacking All The Devices, with AI? - Rob Allen - PSW #941

↗ Quelle (YouTube · Security Weekly - A CRA Resource)
🗣️ Stimme:
📺
YouTube · Security Weekly - A CRA Resource
964 YouTube-Aufrufe
Rob Allen from ThreatLocker joins us to discuss securing agentic AI with zero-trust controls, least privilege, and access controls to limit what agents can access and do.

This segment is sponsored by ThreatLocker. Visit https://securityweekly.com/threatlocker to learn more about them!

In the security news this week:

- Sixteen-year-old Linux LPEs still work
- Ubiquiti UniFi, patch it, also light on details
- If you remember magicJack, you too are old
- Slovakia doesn't trust its own speed cameras
- More homework on NIST's vulnerability database
- Your webcam, mic, and key light, all owned
- Printer moonlights as Minecraft server
- Zombie credit cards
- Your car's infotainment system fuels botnets
- Feds warn about AI-powered PLC attacks
- Can an AI actually reverse engineer its way out?
- Denver International's security breach, volume six
- Charlotte's breach and a parking company
- Why your ancient tech might be the safe one
- Microsoft counts billions of phishing emails
- A password vault that leaked to any website
- Australia sells password books at the post office
- Another perfect ten, this time in Entra ID
- Cisco's bug scores read like Olympic gymnastics

Visit https://www.securityweekly.com/psw for all the latest episodes!

Show Notes: https://securityweekly.com/psw-941

00:00:00 Hacking Devices with AI: A Security Weekly Preview
00:01:14 Unpacking Agentic AI's Productivity vs. Security Dangers
00:07:34 Treating AI Agents Like Users: Granular Security Controls
00:17:57 Securing Cloud Data and Access Against AI-Driven Attacks
00:33:17 Transitioning to This Week's Cybersecurity Headlines
00:36:12 Exploiting Expired Credit Cards: The Visa Kernel 3 Flaw
00:51:41 Unpacking AI-Assisted PLC Exploits and OT Security Gaps
01:08:21 Physical Security Failures at Denver International Airport
01:12:17 Why Ancient Technology Might Be Your Safest Bet
01:25:12 Charlotte's Parking Company Breach: Convenience vs. Security
01:30:38 The Dangers of QR Code Stickers on Gas Pumps
01:39:48 Rethinking Password Security: Books, Managers, and Brains
01:48:08 Android's Reach: Badbox Malware in Cars and Beyond
01:53:42 Compromising Podcast Gear and AI's Stubborn Writing Style
Vollständiger Original-Bericht
Ausführliche Details, Code-Beispiele & Hersteller-Stellungnahme auf youtube.com.
↗ Original-Artikel auf youtube.com lesen
Wie bewertest du diesen Beitrag?
1 Klick Feedback
Teilen mit Netzwerk & Team:
Community Threat-Level Barometer
Live Votum

Wie stufst du das Risiko dieser Schwachstelle / Bedrohung für dein Unternehmen ein?

Noch keine Stimmen — schätze das Risiko als Erster ein.

Community-Analysen & Experten-Meinungen 0

Verfasse deine eigene Analyse, teile Workarounds oder diskutiere diesen Vorfall im Blog.
Noch keine Community-Analyse verfasst. Markiere einen Textabschnitt oder klicke oben auf Eigene Analyse verfassen“!
Community Pulse: Relevanz-Einschätzung
1 Klick Experten-Votum
🔴 Akute Relevanz 38%
🟡 In Evaluierung 22%
🟢 Keine Auswirkung 13%
Spannende Innovation 27%
Verwandte Story-Cluster & Quellen (Vektor-KI)
Port 8095 Engine
1 Quelle
Meet Manic: The Android Malware With a Sneaky Backup Plan
1 Quelle
Pegasus and NoviSpy Used Against Serbian Protesters
1 Quelle
Google fixes the sixth actively exploited Chrome zero-day of 2026